Vulnerabilities (CVE)

Filtered by vendor Codeastro Subscribe
Filtered by product Simple Inventory System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-13280 1 Codeastro 1 Simple Inventory System 2025-11-19 7.5 HIGH 7.3 HIGH
A vulnerability was determined in CodeAstro Simple Inventory System 1.0. The impacted element is an unknown function of the file /index.php of the component Login. Executing manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-11610 1 Codeastro 1 Simple Inventory System 2025-10-20 6.5 MEDIUM 6.3 MEDIUM
A security flaw has been discovered in SourceCodester Simple Inventory System 1.0. This issue affects some unknown processing of the file /brand.php. The manipulation of the argument editBrandName results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.
CVE-2025-11611 1 Codeastro 1 Simple Inventory System 2025-10-20 6.5 MEDIUM 6.3 MEDIUM
A weakness has been identified in SourceCodester Simple Inventory System 1.0. Impacted is an unknown function of the file /user.php. This manipulation of the argument uemail causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.